Short Name |
HTTP:CGI:BUGZILLA:PRIV-UP |
---|---|
Severity |
Warning |
Recommended |
No |
Category |
HTTP |
Keywords |
Bugzilla Account Privilege Escalation |
Release Date |
2003/04/22 |
Update Number |
1213 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+ |
This signature detects attempts to exploit a known vulnerability in Bugzilla. Versions 2.14 and earlier are vulnerable. Attackers can send a maliciously crafted URL to elevate their Bugzilla account privileges; attackers can use their new status to perform more severe attacks.
Bugzilla is the bug tracking software package by the Mozilla project. It can be configured to run on Microsoft Windows and various Unix/Linux platforms. A vulnerability exists in the buglist.cgi script which may allow a remote attacker to modify the logic of an SQL query. Due to lack of input validation, it is possible to append arbitrary SQL to the WHERE part of a query. This may permit to the attacker to execute commands on the database.